Linux Kernel AF_UNIX Arbitrary Kernel Memory Modification Vulnerability

A serialization error is reported to reside in the AF_UNIX address family. The error creates a race condition that allows local users to repeatedly increment arbitrary kernel memory locations.

This vulnerability allows local users to modify arbitrary kernel memory, facilitating privilege escalation; it may possibly allow code execution in the context of the kernel.

Versions prior to 2.4.28 are reportedly affected by this vulnerability.


 

Privacy Statement
Copyright 2010, SecurityFocus